CVE-2017-0259
MEDIUMMicrosoft Windows 10 - Information Disclosure
Title source: ruleDescription
The Windows kernel in Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows authenticated attackers to obtain sensitive information via a specially crafted document, aka "Windows Kernel Information Disclosure Vulnerability," a different vulnerability than CVE-2017-0175, CVE-2017-0220, and CVE-2017-0258.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Google Security Research · c++doswindows
https://www.exploit-db.com/exploits/42007
Scores
CVSS v3
4.7
EPSS
0.0318
EPSS Percentile
87.0%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-200
Status
published
Products (9)
microsoft/windows_10
microsoft/windows_10
1511
microsoft/windows_10
1607
microsoft/windows_10
1703
microsoft/windows_8.1
microsoft/windows_rt_8.1
microsoft/windows_server_2012
r2
microsoft/windows_server_2016
Microsoft Corporation/Microsoft Windows
Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, an
Published
May 12, 2017
Tracked Since
Feb 18, 2026